CGI abuses Family for Nessus

IDNameSeverity
112214Ansible Tower WebUI Detection
info
112213Ansible Tower Unsupported Version
critical
112212Ansible Tower 3.1.x < 3.1.8 / 3.2.x < 3.2.6 CSRF vulnerability
high
112211EMC RSA Archer 6.1.x, 6.2.x, 6.3.x < 6.3.0.7 and 6.4.x < 6.4.0.1 SQL Injection Vulnerability
medium
112210PHP Xdebug Module Unauthenticated RCE (exploit)
critical
112192Apache ActiveMQ 5.x < 5.15.5 Multiple Vulnerabilities
critical
112160Joomla! < 3.8.12 Multiple Vulnerabilities
critical
112115ASUSTOR Data Master < 3.1.6 Multiple Vulnerabilities
high
112064Apache Struts CVE-2018-11776 Results With No Namespace Remote Code Execution (S2-057) (remote)
high
112046Elasticsearch ESA-2018-11
high
112045Elasticsearch ESA-2018-10
medium
112044Elasticsearch ESA-2018-07
critical
112043Elasticsearch ESA-2017-19
high
112042Elasticsearch ESA-2017-18
medium
112041Elasticsearch ESA-2017-15
medium
112040Elasticsearch ESA-2017-10
medium
112039Elasticsearch ESA-2017-09
medium
112038Elasticsearch ESA-2017-06
high
112037Elasticsearch ESA-2017-03
medium
111667Embedded HP Web Server Detected
info
111604Dell iDRAC Products Multiple Vulnerabilities (June 2018)
high
111603Jenkins < 2.121.2 / 2.133 Multiple Vulnerabilities
high
111600MySQL Enterprise Monitor 3.3.x < 3.3.9.3339 / 3.4.x < 3.4.7.4296 / 4.0.x < 4.0.4.5233 Multiple Vulnerabilities (April 2018 CPU)
high
111599Drupal 8.x < 8.5.6 Symfony Risky HTTP Header Restriction Bypass Vulnerability (SA-CORE-2018-005)
medium
111593MySQL Enterprise Monitor 3.4.x < 3.4.8 / 4.0.x < 4.0.5 / 8.0.x < 8.0.1 Multiple Vulnerabilities (July 2018 CPU)
critical
111530Atlassian JIRA 7.6.7 / 7.7.x < 7.7.5 / 7.8.x < 7.8.5 / 7.9.x < 7.9.3 / 7.10.x < 7.10.2 XSS
medium
111351Hashicorp Consul Web UI and API access
high
111233ASUSTOR Data Master (ADM) Detection
info
111232ASUSTOR Data Master < 3.1.3 Multiple Vulnerabilities
critical
111231PHP 7.1.x < 7.1.20 exif_thumbnail_extract() DoS
high
111230PHP 5.6.x < 5.6.37 exif_thumbnail_extract() DoS
high
111229WordPress < 4.9.7 Arbitrary File Deletion Vulnerability
high
111217PHP 7.3.0 [alpha|beta] < 7.3.0 Multiple vulnerabilities
high
111216PHP 7.2.x < 7.2.8 Use After Free Arbitrary Code Execution in EXIF
critical
111215PHP 7.0.x < 7.0.31 Use After Free Arbitrary Code Execution in EXIF
critical
111213Oracle Primavera Unifier Multiple Vulnerabilities (July 2018 CPU)
high
111212Oracle Primavera P6 Enterprise Project Portfolio Management (EPPM) Multiple Vulnerabilities (July 2018 CPU)
medium
111064Joomla! < 3.8.9 XSS vulnerability in language switcher module
medium
111063Joomla! < 3.8.9 Local File Inclusion with PHP 5.3
high
110904Citrix NetScaler Authentication Bypass Vulnerability (CTX232199)
high
110903Citrix NetScaler Multiple Vulnerabilities (CTX232161)
critical
110776Atlassian Bitbucket Detection
info
110775Atlassian Jira < 7.2.15 OAuth Plugin IconUriServlet Internal Network Resource Disclosure CSRF
medium
110774Atlassian FishEye < 4.3.2 OAuth Plugin IconUriServlet Internal Network Resource Disclosure CSRF
medium
110773Atlassian Crucible < 4.3.2 OAuth Plugin IconUriServlet Internal Network Resource Disclosure CSRF
medium
110772Atlassian Crowd < 2.11.2 OAuth Plugin IconUriServlet Internal Network Resource Disclosure CSRF
medium
110771Atlassian Confluence < 6.1.3 OAuth Plugin IconUriServlet Internal Network Resource Disclosure CSRF
medium
110770Atlassian Bitbucket < 4.14.4 OAuth Plugin IconUriServlet Internal Network Resource Disclosure CSRF
medium
110769Atlassian Bamboo < 6.0.0 OAuth plugin allows arbitrary HTTP requests to be proxied
medium
110768Kubernetes unprivileged API access
high